So you seem to know how people are "doing it wrong" but have no proposal
as to what right is.

I provided the patch to Logitech to fix the squeezecenter install
within ~5min of discovering the interaction bug.  It's completely
trivial, but the package maintainer did a messy job of implementing the
patch.  The package would add the patched security control over and over
again for each install of the package.  This is NOT apparmor's fault,
and does not prove a failure of apparmor's model of implementation.

You are compltely wrong about apparmor "not just working".  The users
of the normal mysql-server package on Ubuntu don't notice any problems
because the package contains a correctly written security restriction
template.  This is a 100% win for both Ubuntu and Apparmor.  Logitech
mildly abuses the mysql-server package by starting up a daemon outside
of the normal target configuration.  This is NOT apparmor's fault, nor
Ubuntu's fault.  Logitech is doing things with a package that is
non-standard and causes problems.


-- 
SuperQ
------------------------------------------------------------------------
SuperQ's Profile: http://forums.slimdevices.com/member.php?userid=2139
View this thread: http://forums.slimdevices.com/showthread.php?t=52549

_______________________________________________
unix mailing list
[email protected]
http://lists.slimdevices.com/lists/listinfo/unix

Reply via email to